Cyber SOC Analyst
Role details
Job location
Tech stack
Job description
Cyber security analysts are responsible for helping improve the overall security posture of the organization. They evaluate, test, and document the security posture on a wide variety of activities, processes, and controls, work closely with other security staff, business lines, and external partners, and assist in remediating risk while ensuring the business can innovate. Analysts in this role are expected to consistently learn and grow., * Handle day-to-day monitoring and operational support of hardware, software, managed solutions, and service provider relationships.
- Monitor technical systems for unusual and suspicious activity across a wide range of products.
- Maintain vulnerability management standards across all operating systems, software applications and hardware configurations.
- Assist with incident response teams to detect, investigate, and prevent security breaches. This may include involvement outside of regular work hours, and responsiveness is expected.
- Assist with security configuration standards for systems and business applications.
- Analyze and test security controls while working with information technology teams for remediation.
- Participate in technical and non-technical projects requiring information security oversight and to ensure policies, procedures and standards are met.
- Recommend new security solutions as well as effective improvements to existing security controls or processes that do not negatively impact business innovation.
- Uphold Nicolet's philosophy and policies by maintaining appropriate controls to ensure full compliance with applicable laws and regulations, thereby fulfilling legal responsibilities and enhancing the quality of services provided by Nicolet.
- Understand and communicate the value of diversity within the workplace and to work successfully with others without regard to age, gender, race, sexual orientation, ethnicity, culture, religion, disability status, socioeconomic status or other non-job-related classification, including a commitment to Nicolet's policies on equal employment opportunities and non-discrimination with a willingness to pursue efforts of inclusion and respect toward different perspectives.
- Performs all other duties as assigned.
Requirements
- Bachelor's degree in information assurance, computer science, engineering, or related technical field preferable.
- 3-5 years of related experience required or consumable experience.
- CISSP (and related) preferable but not required.
- Preferably 1-3 years' experience in information security or related information technology security systems, with 2 years' technical hands-on information security practitioner experience.
- Ideally familiar with one or more regulatory requirements and laws such as, but not limited to, GLBA, FFIEC, SOX, HIPPA, PCI DSS, and GDPR (General Data Protection Regulation). Additionally, experience in one or more of the following areas preferred: NIST (National Institute of Standards and Technology) CSF, MITRE, ISO 27002, and ITIL.
- Understanding of scripting languages (e.g., PowerShell, Python).
- Preferred experience in cloud computing technologies, including software, infrastructure, and platform-as-a-service, as well as public, private, and hybrid environments.
- Experience in incident response and system monitoring and analysis.
- Experience in traditional security controls and technologies, such as Security Information and Event Management (SEIM) systems, Intrusion detection/prevention systems (IDS/IPS), identity and access management (IDAM) systems, antivirus, and firewalls. In addition to endpoint detection and response (EDR), threat intelligence platforms, and security automation and orchestration.
- Record of accomplishment acting with integrity, taking pride in work, seeking to excel, and being curious and flexible.
- Strong written and verbal communication skills across varying levels of the organization.
- Understanding of service design, delivery concepts and control frameworks.
- Organized, with the ability to prioritize and complete tasks within defined SLAs.
- Excellent judgment and the ability to make quick decisions when working in complex situations.
- High degree of integrity, trustworthiness, and confidence; represents the company and its management team with the highest level of professionalism.
- Must be able to work fully in office. This is not a remote position.
Benefits & conditions
- Medical, Dental, Vision, & Life Insurance
- 401(k) with a company match
- PT0 & 11 1/2 Paid Holidays
The above statements are intended to describe the general nature and level of work being performed. They are not intended to be construed as an exhaustive list of all responsibilities and skills required for the position.